📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global vulnerability Critical Infrastructure, Government, Enterprise HIGH 3h Global ransomware Home Security and Consumer Services HIGH 10h Global malware Network Infrastructure / Telecommunications CRITICAL 12h Global general Software / IT Operations LOW 12h Global extortion Retail and Hospitality HIGH 14h Global phishing Technology/Enterprise Security MEDIUM 14h Global vulnerability Information Technology / Infrastructure CRITICAL 15h Global backdoor Government and Critical Infrastructure CRITICAL 16h Global phishing Financial Services HIGH 16h Global supply_chain Technology and Software Development HIGH 18h Global vulnerability Critical Infrastructure, Government, Enterprise HIGH 3h Global ransomware Home Security and Consumer Services HIGH 10h Global malware Network Infrastructure / Telecommunications CRITICAL 12h Global general Software / IT Operations LOW 12h Global extortion Retail and Hospitality HIGH 14h Global phishing Technology/Enterprise Security MEDIUM 14h Global vulnerability Information Technology / Infrastructure CRITICAL 15h Global backdoor Government and Critical Infrastructure CRITICAL 16h Global phishing Financial Services HIGH 16h Global supply_chain Technology and Software Development HIGH 18h Global vulnerability Critical Infrastructure, Government, Enterprise HIGH 3h Global ransomware Home Security and Consumer Services HIGH 10h Global malware Network Infrastructure / Telecommunications CRITICAL 12h Global general Software / IT Operations LOW 12h Global extortion Retail and Hospitality HIGH 14h Global phishing Technology/Enterprise Security MEDIUM 14h Global vulnerability Information Technology / Infrastructure CRITICAL 15h Global backdoor Government and Critical Infrastructure CRITICAL 16h Global phishing Financial Services HIGH 16h Global supply_chain Technology and Software Development HIGH 18h

🛡️ CVE Intelligence Center

Common Vulnerabilities & Exposures — Security Intelligence Database

CVE ID Severity CVSS Description Status Published
CVE-2022-23227 Critical 9.0
NUUO NVRmini2 Devices Missing Authentication Vulnerability — NUUO NVRmini2 devices contain a missing authentication vul…
⚡ Exploit ✅ Patch Dec 18, 2024
CVE-2024-55956 Critical 9.0
Cleo Multiple Products Unauthenticated File Upload Vulnerability — Cleo Harmony, VLTrader, and LexiCom, which are manage…
⚡ Exploit ✅ Patch Dec 17, 2024
CVE-2024-20767 Critical 9.0
Adobe ColdFusion Improper Access Control Vulnerability — Adobe ColdFusion contains an improper access control vulnerabil…
⚡ Exploit ✅ Patch Dec 16, 2024
CVE-2024-35250 Critical 9.0
Microsoft Windows Kernel-Mode Driver Untrusted Pointer Dereference Vulnerability — Microsoft Windows Kernel-Mode Driver…
⚡ Exploit ✅ Patch Dec 16, 2024
CVE-2024-50623 Critical 9.0
Cleo Multiple Products Unrestricted File Upload Vulnerability — Cleo Harmony, VLTrader, and LexiCom, which are managed f…
⚡ Exploit ✅ Patch Dec 13, 2024
CVE-2024-49138 Critical 9.0
Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability — Microsoft Windows Comm…
⚡ Exploit ✅ Patch Dec 10, 2024
CVE-2024-51378 Critical 9.0
CyberPanel Incorrect Default Permissions Vulnerability — CyberPanel contains an incorrect default permissions vulnerabil…
⚡ Exploit ✅ Patch Dec 4, 2024
CVE-2023-45727 Critical 9.0
North Grid Proself Improper Restriction of XML External Entity (XXE) Reference Vulnerability — North Grid Proself Enterp…
⚡ Exploit ✅ Patch Dec 3, 2024
CVE-2024-11667 Critical 9.0
Zyxel Multiple Firewalls Path Traversal Vulnerability — Multiple Zyxel firewalls contain a path traversal vulnerability …
⚡ Exploit ✅ Patch Dec 3, 2024
CVE-2024-11680 Critical 9.0
ProjectSend Improper Authentication Vulnerability — ProjectSend contains an improper authentication vulnerability that a…
⚡ Exploit ✅ Patch Dec 3, 2024
CVE-2023-28461 Critical 9.0
Array Networks AG and vxAG ArrayOS Missing Authentication for Critical Function Vulnerability — Array Networks AG and vx…
⚡ Exploit ✅ Patch Nov 25, 2024
CVE-2024-21287 Critical 9.0
Oracle Agile Product Lifecycle Management (PLM) Incorrect Authorization Vulnerability — Oracle Agile Product Lifecycle M…
⚡ Exploit ✅ Patch Nov 21, 2024
CVE-2024-44308 Critical 9.0
Apple Multiple Products Code Execution Vulnerability — Apple iOS, macOS, and other Apple products contain an unspecified…
⚡ Exploit ✅ Patch Nov 21, 2024
CVE-2024-44309 Critical 9.0
Apple Multiple Products Cross-Site Scripting (XSS) Vulnerability — Apple iOS, macOS, and other Apple products contain an…
⚡ Exploit ✅ Patch Nov 21, 2024
CVE-2024-38812 Critical 9.0
VMware vCenter Server Heap-Based Buffer Overflow Vulnerability — VMware vCenter Server contains a heap-based buffer over…
⚡ Exploit ✅ Patch Nov 20, 2024
CVE-2024-38813 Critical 9.0
VMware vCenter Server Privilege Escalation Vulnerability — VMware vCenter contains an improper check for dropped privile…
⚡ Exploit ✅ Patch Nov 20, 2024
CVE-2024-0012 Critical 9.0
Palo Alto Networks PAN-OS Management Interface Authentication Bypass Vulnerability — Palo Alto Networks PAN-OS contains …
⚡ Exploit ✅ Patch Nov 18, 2024
CVE-2024-1212 Critical 9.0
Progress Kemp LoadMaster OS Command Injection Vulnerability — Progress Kemp LoadMaster contains an OS command injection …
⚡ Exploit ✅ Patch Nov 18, 2024
CVE-2024-9474 Critical 9.0
Palo Alto Networks PAN-OS Management Interface OS Command Injection Vulnerability — Palo Alto Networks PAN-OS contains a…
⚡ Exploit ✅ Patch Nov 18, 2024
CVE-2024-9463 Critical 9.0
Palo Alto Networks Expedition OS Command Injection Vulnerability — Palo Alto Networks Expedition contains an OS command …
⚡ Exploit ✅ Patch Nov 14, 2024
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.